ALL REALTRUCK Career logo

IT Cybersecurity Director

ALL REALTRUCK Career
Full-time
Remote
United States

POSITION SUMMARY

The Director of IT Cybersecurity will serve as an expert cybersecurity leader ensuring the development and implementation of comprehensive, long term cybersecurity strategies protect our business and information systems from a broad range of cyber threats. This leadership role will deliver against critical business objectives to ensure regulatory standards. This role will create and maintain a DevSecOps culture to approach cybersecurity by enablement, automation, and guardrails over roadblocks. A significant part of this role will include the design and implementation of modern security architecture solutions to bolster our defenses and ensure the resilience of our IT systems and platforms throughout all divisions, including ecommerce and manufacturing. This leader will also develop a high performing Cybersecurity team.

CORE FUNCTIONS

  • Strategic Leadership:

o   Develop, implement, and maintain comprehensive cybersecurity strategies and policies aligned with the organization's business objectives and regulatory requirements. This role involves a deep understanding of the current and emerging threat landscape to ensure strategies are agile and robust enough to mitigate risks.

  • Security Architecture and Infrastructure:

o   Oversee the design and implementation of security solutions and architecture to safeguard the organization's systems and data. This will include maintaining up-to-date cybersecurity tools and infrastructure to protect against current and future threats.

  • Security Operations and Incident Response:

o   Oversee the Security Operations Center (SOC) to ensure the organization's readiness to detect, respond to, and recover from cybersecurity incidents.

o   Manage incident response plans, crisis management strategies, and recovery procedures to minimize the impact of security breaches.

  • Leadership and Team Management:

o   Lead and manage the cybersecurity team, encompassing hiring, training/development, and mentoring responsibilities.

o   Responsible for building a high-performing and engaged team capable of effectively executing the cybersecurity strategy and managing incident responses.

  • Policy and Framework Development:

o   Establish and maintain cybersecurity policies, standards, and frameworks, defining security protocols, procedures, and guidelines that ensure the protection of data and IT resources, in compliance with legal and regulatory requirements.

  • Risk Management and Compliance Oversight:

o   Identify, evaluate, and mitigate cybersecurity risks through regular risk assessments, developing risk management strategies, and ensuring compliance with relevant cybersecurity laws, regulations including (SOX, CCPA, GDPR, PC), and industry standards to protect the organization from potential threats and vulnerabilities.

  • Cybersecurity Training and Awareness:

o   Design and implement comprehensive cybersecurity training and awareness initiatives for all employees.

o   Conduct regular training sessions, simulations, and drills to ensure staff understand the importance of cybersecurity, recognize potential threats, and respond appropriately, reinforcing a culture of security awareness throughout the organization.

QUALIFICATIONS & REQUIREMENTS

Education and Experience

  • Bachelor’s in computer science, Information Security, or a related field, with a strong focus on security architecture required. Masters degree preferred.
  • 10+ years of experience in the field of information security required, with a minimum of 5 years in a cybersecurity leadership role (directing and developing a team) required.
  • Experience successfully executing on multiple programs in complex environments, possessing a deep understanding of modern cybersecurity concepts, threat landscape, risk management, and cloud technologies required, preferably within a multi-national company publicly traded company.
  • Experience with Cloud Security Stacks (AWS, GCP, Azure), Frameworks (CIS, NIST, PCI-DSS, SOX, etc.), Securing CI/CD Pipelines, SIEM Solutions preferred.
  • Experience with Zero Trust Methodologies preferred.
  • Experience integrating security across IT and OT environments is preferred.

Required Licenses

  • Professional cybersecurity certifications (e.g., CISSP, CISM, CISA, AWS) preferred.

Skills, Abilities, and Knowledge

  • Technical Knowledge Required:

o   Network security architecture, cloud security, encryption technologies, vulnerability assessment, intrusion detection systems, firewall management, and malware analysis.

  • Risk Management Skills Required:

o   Threat identification and analysis, risk assessment and prioritization, and mitigation strategies development.

  • Incident Response Abilities:

o   Incident handling procedures, forensics investigation, and breach containment and recovery.

  • Compliance:

o   Knowledge of relevant cybersecurity regulations (SOX, GDPR, HIPAA, etc.), auditing and compliance reporting.

  • Leadership Abilities:

o   Team building, development engagement and motivation, stakeholder management, clear and concise communication to technical and non-technical audiences.

  • Strategic Thinking:

o   Proactive security planning, budget management, cybersecurity strategy development.

  • Adaptability:

o   Keeping up with emerging cyber threats and technologies and staying current with industry best practices.

Travel

  • Occasional travel may be required.

COMPETENCIES

  • Blends people into teams when needed; creates strong morale in his/her team; shares wins and successes; fosters open dialogue; lets people finish and be responsible for their work; defines success in terms of the whole team; creates a feeling of belonging in the team.
  • Sees ahead clearly; can anticipate future consequences and trends accurately; has broad knowledge and perspective; is future oriented; can articulately paint credible pictures and visions of possibilities and likelihoods; can create competitive and breakthrough strategies and plans.
  • Follows through on commitments and makes sure others do the same; Acts with a dear sense of ownership; Takes personal responsibility for decisions, actions, and failures; Establishes dear responsibilities and processes for monitoring work and measuring results; Designs feedback loops into work. 
  • Ability to lead and collaborate with teams from different departments or disciplines within an organization; Creates synergy among cross-functional team members to achieve a common goal; Understands and communicates how a project or initiative helps each functional area of the organization, proactively keeps everyone well informed regarding progress and potential challenges; Problem solves and resolves conflict quickly; Is organized and effectively leverages resources with their function and outside of their function to deliver results; Able to effectively call upon and leverage resources outside their area of responsibility to generate organizational success. Build trust quickly and continually motivates and recognizes others
  • Has a strong bottom-line orientation; Persists in accomplishing objectives despite obstacles and set-backs; Has a track record of exceeding goals successfully; Pushes self and helps others achieve results.
  • Is confident under pressure; Handles and manages crises effectively. Maintains a positive attitude despite adversity. Bounces back from setbacks; Grows from hardships and negative experiences
  • Is effective in a variety of communication settings: one-on-one, small or large groups, or among diverse styles and position levels; Attentively listens to others adjust to fit the audience and the message; Provides timely and effective information to others across the organization; Encourages the open expression of diverse ideas and opinion.

SUPERVISOR RESPONSIBILITIES

  • Manager+: Plans, organizes, evaluates, and directs the employees within the department function. Has direct reports.

PHYSICAL REQUIREMENTS

  • Sedentary Work: Exerting up to 10 pounds of force occasionally and/or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects. Sedentary work involved sitting most of the time. Walking and standing are required only occasionally.

Physical Activities

  • This position is subject to the following physical activities: talking, hearing, and repetitive motions.

Visual Acuity

  • The worker is required to have close visual acuity to perform an activity such as preparing and analyzing data and figures; transcribing; viewing a computer terminal; expansive reading; visual inspection involving small defects, small parts and/or operation of machines (including inspection); using measurement devices; and/or assembly of fabrication of parts at distances close to the eyes.

Working Conditions

  • The worker is subject to an office environment, primarily involving sedentary work, extensive use of a computer, and frequent virtual collaboration, with occasional travel to other sites or facilities as needed.

 #LI-Remote